Bitcoin Forum
May 05, 2024, 04:44:46 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: Everyone using SonicWall firewalls in front of your farms UPDATE YOUR UNIT NOW  (Read 553 times)
DaveF (OP)
Legendary
*
Offline Offline

Activity: 3472
Merit: 6263


Crypto Swap Exchange


View Profile WWW
October 17, 2020, 12:24:20 PM
Last edit: October 24, 2020, 11:28:45 AM by DaveF
Merited by philipma1957 (4), suchmoon (4), vapourminer (3), frodocooper (3), gmaxwell (2), HagssFIN (2), OgNasty (1), BitMaxz (1), mikeywith (1), Heisenberg_Hunter (1)
 #1

If you are running a mining farm, or anything behind a SonicWall in general there was a major vulnerability posted about them.
You should update ASAP: https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2020-0010

For the most part even if they are out of support the firmware is available for free from SonicWall unless it's a REALLY old product.

-Dave

█▀▀▀











█▄▄▄
▀▀▀▀▀▀▀▀▀▀▀
e
▄▄▄▄▄▄▄▄▄▄▄
█████████████
████████████▄███
██▐███████▄█████▀
█████████▄████▀
███▐████▄███▀
████▐██████▀
█████▀█████
███████████▄
████████████▄
██▄█████▀█████▄
▄█████████▀█████▀
███████████▀██▀
████▀█████████
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
c.h.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀█











▄▄▄█
▄██████▄▄▄
█████████████▄▄
███████████████
███████████████
███████████████
███████████████
███░░█████████
███▌▐█████████
█████████████
███████████▀
██████████▀
████████▀
▀██▀▀
1714884286
Hero Member
*
Offline Offline

Posts: 1714884286

View Profile Personal Message (Offline)

Ignore
1714884286
Reply with quote  #2

1714884286
Report to moderator
1714884286
Hero Member
*
Offline Offline

Posts: 1714884286

View Profile Personal Message (Offline)

Ignore
1714884286
Reply with quote  #2

1714884286
Report to moderator
1714884286
Hero Member
*
Offline Offline

Posts: 1714884286

View Profile Personal Message (Offline)

Ignore
1714884286
Reply with quote  #2

1714884286
Report to moderator
Activity + Trust + Earned Merit == The Most Recognized Users on Bitcointalk
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
philipma1957
Legendary
*
Offline Offline

Activity: 4116
Merit: 7849


'The right to privacy matters'


View Profile WWW
October 24, 2020, 04:28:19 AM
Last edit: October 24, 2020, 11:44:40 AM by philipma1957
 #2

I corrected the spelling of the word update in the title. I Should have noticed it sooner.

▄▄███████▄▄
▄██████████████▄
▄██████████████████▄
▄████▀▀▀▀███▀▀▀▀█████▄
▄█████████████▄█▀████▄
███████████▄███████████
██████████▄█▀███████████
██████████▀████████████
▀█████▄█▀█████████████▀
▀████▄▄▄▄███▄▄▄▄████▀
▀██████████████████▀
▀███████████████▀
▀▀███████▀▀
.
 MΞTAWIN  THE FIRST WEB3 CASINO   
.
.. PLAY NOW ..
DaveF (OP)
Legendary
*
Offline Offline

Activity: 3472
Merit: 6263


Crypto Swap Exchange


View Profile WWW
October 24, 2020, 11:29:59 AM
Merited by philipma1957 (1)
 #3

Heh, but we both missed I also munged the word firewall.
I was too cheap to buy that last vowel.

Spent most of the week doing updates what a pain. Makes you really wonder how many vulnerable units are out there.

-Dave

█▀▀▀











█▄▄▄
▀▀▀▀▀▀▀▀▀▀▀
e
▄▄▄▄▄▄▄▄▄▄▄
█████████████
████████████▄███
██▐███████▄█████▀
█████████▄████▀
███▐████▄███▀
████▐██████▀
█████▀█████
███████████▄
████████████▄
██▄█████▀█████▄
▄█████████▀█████▀
███████████▀██▀
████▀█████████
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
c.h.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀█











▄▄▄█
▄██████▄▄▄
█████████████▄▄
███████████████
███████████████
███████████████
███████████████
███░░█████████
███▌▐█████████
█████████████
███████████▀
██████████▀
████████▀
▀██▀▀
DaveF (OP)
Legendary
*
Offline Offline

Activity: 3472
Merit: 6263


Crypto Swap Exchange


View Profile WWW
January 23, 2021, 02:44:48 PM
Last edit: January 23, 2021, 10:09:02 PM by frodocooper
Merited by frodocooper (2), vapourminer (1)
 #4

23-Jan-2021 Update, if you are using a VPN to connect to a few SonicWall products they have found another vulnerability.

https://www.sonicwall.com/support/product-notification/urgent-security-notice-netextender-vpn-client-10-x-sma-100-series-vulnerability/210122173415410/

Not sure how many people are actually using them in the home / private / mining environment but some people might. If you have your stuff hosted somewhere and you need a VPN to connect you should find out what equipment they are using.

-Dave

█▀▀▀











█▄▄▄
▀▀▀▀▀▀▀▀▀▀▀
e
▄▄▄▄▄▄▄▄▄▄▄
█████████████
████████████▄███
██▐███████▄█████▀
█████████▄████▀
███▐████▄███▀
████▐██████▀
█████▀█████
███████████▄
████████████▄
██▄█████▀█████▄
▄█████████▀█████▀
███████████▀██▀
████▀█████████
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
c.h.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀█











▄▄▄█
▄██████▄▄▄
█████████████▄▄
███████████████
███████████████
███████████████
███████████████
███░░█████████
███▌▐█████████
█████████████
███████████▀
██████████▀
████████▀
▀██▀▀
DaveF (OP)
Legendary
*
Offline Offline

Activity: 3472
Merit: 6263


Crypto Swap Exchange


View Profile WWW
June 15, 2021, 01:29:44 PM
 #5

Necro Bump on 15-June-2021 BUT there is another vulnerability:

https://www.sonicwall.com/support/product-notification/security-advisory-sonicos-vulnerability-in-firewall-web-management-interface/210609115514740/

If there are this many issues with a 'real' product like a SonicWall, think about how many cheap home & SOHO firewall / routers there are out there with vulnerable firmware that people are just running.
How many are out there from manufacturers that don't even exist anymore so your only option would be to buy a new one.

-Dave

█▀▀▀











█▄▄▄
▀▀▀▀▀▀▀▀▀▀▀
e
▄▄▄▄▄▄▄▄▄▄▄
█████████████
████████████▄███
██▐███████▄█████▀
█████████▄████▀
███▐████▄███▀
████▐██████▀
█████▀█████
███████████▄
████████████▄
██▄█████▀█████▄
▄█████████▀█████▀
███████████▀██▀
████▀█████████
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
c.h.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀█











▄▄▄█
▄██████▄▄▄
█████████████▄▄
███████████████
███████████████
███████████████
███████████████
███░░█████████
███▌▐█████████
█████████████
███████████▀
██████████▀
████████▀
▀██▀▀
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!